CVE List

Id CVE No. Status Description Phase Votes Comments Actions
522  CVE-1999-0525  Candidate  IP traceroute is allowed from arbitrary hosts.  Proposed (19990726)  MODIFY(1) Frech | NOOP(1) Baker | REJECT(1) Northcutt  Frech> XF:traceroute  View
2567  CVE-2000-0998  Candidate  Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function.  Proposed (20001129)  ACCEPT(3) Cole, Collins, Mell | MODIFY(1) Frech | NOOP(2) Christey, Wall  Frech> XF:top-format-string(5486) | Christey> BUGTRAQ:20011114 SCO skunkware top format strings issue | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=100576637928933&w=2  View
3995  CVE-2001-1191  Candidate  WebSeal in IBM Tivoli SecureWay Policy Director 3.8 allows remote attackers to cause a denial of service (crash) via a URL that ends in %2e.  Proposed (20020315)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(5) Christey, Cole, Foat, Wall, Ziese  Frech> XF:tivoli-webseal-dos(7716) | http://online.securityfocus.com/archive/1/268124 | Christey> BUGTRAQ:20020417 IBM Security Advisory: IBM Tivoli Policy Director WebSEAL | URL:http://archives.neohapsis.com/archives/bugtraq/2002-04/0223.html | | The vendor says that "there is no denial of service | vulnerability" but goes on to describe "a defect related to | the use of SSL junctions between the WebSEAL component and Web | Servers. This defect can cause the WebSEAL component to fail if SSL | junctions are being used, and certain URLs are then passed across | these junctions." This still sounds like a DoS to me, albeit | one that might not appear in all configurations. | | Fix capitalization: "WebSEAL"  View
1711  CVE-2000-0133  Candidate  Buffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD, XRMD, APPE, SIZE, and RNFR commands.  Proposed (20000208)  ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:tinyftp-command-overflow(4000)  View
1072  CVE-1999-1092  Candidate  tin 1.40 creates the .tin directory with insecure permissions, which allows local users to read passwords from the .inputhistory file.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:tin-insecure-permissions(7796) | Confirmed in changelog for 1.4.1 | http://ftp.kreonet.re.kr/pub/tools/news/tin/v1.4/CHANGES  View

Page 69 of 20943, showing 5 records out of 104715 total, starting on record 341, ending on 345

Actions